Network Analysis
Name | Response | Post-Analysis Lookup |
---|---|---|
www.healyconsultants.com |
CNAME
healyconsultants.com
|
162.159.134.42 |
typically-nut-personalized-syndication.trycloudflare.com | 104.16.230.132 | |
nissan-signature-rs-noise.trycloudflare.com | 104.16.230.132 |
- TCP Requests
-
-
192.168.56.101:49161 104.16.231.132:443nissan-signature-rs-noise.trycloudflare.com
-
192.168.56.101:49163 104.16.231.132:443nissan-signature-rs-noise.trycloudflare.com
-
192.168.56.101:49175 104.16.231.132:443nissan-signature-rs-noise.trycloudflare.com
-
192.168.56.101:49193 104.16.231.132:443nissan-signature-rs-noise.trycloudflare.com
-
192.168.56.101:49194 104.16.231.132:443nissan-signature-rs-noise.trycloudflare.com
-
192.168.56.101:49176 162.159.134.42:443www.healyconsultants.com
-
192.168.56.101:49177 162.159.134.42:443www.healyconsultants.com
-
192.168.56.101:49178 162.159.134.42:443www.healyconsultants.com
-
192.168.56.101:49179 162.159.134.42:443www.healyconsultants.com
-
192.168.56.101:49180 162.159.134.42:443www.healyconsultants.com
-
192.168.56.101:49181 162.159.134.42:443www.healyconsultants.com
-
- UDP Requests
-
-
192.168.56.101:53004 164.124.101.2:53
-
192.168.56.101:53850 164.124.101.2:53
-
192.168.56.101:54148 164.124.101.2:53
-
192.168.56.101:55146 164.124.101.2:53
-
192.168.56.101:59002 164.124.101.2:53
-
192.168.56.101:137 192.168.56.103:137
-
192.168.56.101:137 192.168.56.255:137
-
192.168.56.101:138 192.168.56.255:138
-
192.168.56.101:55149 239.255.255.250:1900
-
PROPFIND
404
https://nissan-signature-rs-noise.trycloudflare.com/AutoRun.inf
REQUEST
RESPONSE
BODY
PROPFIND /AutoRun.inf HTTP/1.1
Connection: Keep-Alive
User-Agent: Microsoft-WebDAV-MiniRedir/6.1.7601
Depth: 0
translate: f
Content-Length: 0
Host: nissan-signature-rs-noise.trycloudflare.com
HTTP/1.1 404 Not Found
Date: Fri, 14 Mar 2025 02:11:55 GMT
Content-Type: text/html; charset=utf-8
Transfer-Encoding: chunked
Connection: keep-alive
CF-Ray: 92003e3a7f05d1e9-ICN
CF-Cache-Status: DYNAMIC
Server: cloudflare
ICMP traffic
No ICMP traffic performed.
IRC traffic
No IRC requests performed.
Suricata Alerts
Suricata TLS
Flow | Issuer | Subject | Fingerprint |
---|---|---|---|
TLSv1 192.168.56.101:49161 104.16.231.132:443 |
C=US, O=Google Trust Services, CN=WR1 | CN=trycloudflare.com | c1:f5:d9:f4:2e:e4:62:4a:93:1f:06:f7:a0:22:d4:38:59:bf:bd:94 |
TLSv1 192.168.56.101:49193 104.16.231.132:443 |
C=US, O=Google Trust Services, CN=WR1 | CN=trycloudflare.com | c1:f5:d9:f4:2e:e4:62:4a:93:1f:06:f7:a0:22:d4:38:59:bf:bd:94 |
TLSv1 192.168.56.101:49175 104.16.231.132:443 |
C=US, O=Google Trust Services, CN=WR1 | CN=trycloudflare.com | c1:f5:d9:f4:2e:e4:62:4a:93:1f:06:f7:a0:22:d4:38:59:bf:bd:94 |
TLSv1 192.168.56.101:49163 104.16.231.132:443 |
C=US, O=Google Trust Services, CN=WR1 | CN=trycloudflare.com | c1:f5:d9:f4:2e:e4:62:4a:93:1f:06:f7:a0:22:d4:38:59:bf:bd:94 |
TLSv1 192.168.56.101:49194 104.16.231.132:443 |
C=US, O=Google Trust Services, CN=WR1 | CN=trycloudflare.com | c1:f5:d9:f4:2e:e4:62:4a:93:1f:06:f7:a0:22:d4:38:59:bf:bd:94 |
Snort Alerts
No Snort Alerts